Malware

What is “Malware.AI.3762653944”?

Malware Removal

The Malware.AI.3762653944 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.3762653944 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Malware.AI.3762653944?


File Info:

name: 9B5FBDDF1F26C364C98F.mlw
path: /opt/CAPEv2/storage/binaries/98c291d016750ad3470f2f34b39e4fa2b8711fb9d35be934e1fb0642bcfcd424
crc32: 222CBA34
md5: 9b5fbddf1f26c364c98f5e16c2d6c0da
sha1: f445e94bc7f177560bf1b6b5231f001eedf1120a
sha256: 98c291d016750ad3470f2f34b39e4fa2b8711fb9d35be934e1fb0642bcfcd424
sha512: a086728b12a82cdc5b64942b96f26e19c27e71d0194fb1d7b094ad1d0ddfb852b1ca1649018deddaad08af578fd027fe7e20ad472900816edc98d7747ba6c0b7
ssdeep: 24576:4yIZY6jPKYEkQUQyAXqtc+SAfm1xx97EU9T8wdsyqZs3JOxMuBRUq:4yay/UQysqqOfm1L97E08w6s3w1aq
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T173653306A5D2BC7AC170C8BCBE59845C0FB26F2A5C3501457ACD3CAE473B948B65EB87
sha3_384: 540dadea2489f4a9c1b24d93f567da2ae83f18f82ad907eabdb4d99e4b9dd4a5fa15c6f7e410f94768f6b244abf61cda
ep_bytes: 558bec83c4c453565733c08945f08945
timestamp: 1992-06-19 22:22:17

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName: Graphics Development Studio
FileDescription: Ferreteria Plus Setup
FileVersion:
LegalCopyright:
ProductName: Ferreteria Plus
ProductVersion:
Translation: 0x0000 0x04b0

Malware.AI.3762653944 also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.FareIt.4!c
MicroWorld-eScanTrojan.Delf.FareIt.Gen.rIW@nWgVxwT
FireEyeTrojan.Delf.FareIt.Gen.rIW@nWgVxwT
McAfeeArtemis!9B5FBDDF1F26
MalwarebytesMalware.AI.3762653944
SangforTrojan.Win32.Fareit.Vlu1
CrowdStrikewin/grayware_confidence_60% (D)
ArcabitTrojan.Delf.FareIt.Gen.EEBACB
APEXMalicious
BitDefenderTrojan.Delf.FareIt.Gen.rIW@nWgVxwT
SophosGeneric Reputation PUA (PUA)
VIPRETrojan.Delf.FareIt.Gen.rIW@nWgVxwT
McAfee-GW-EditionBehavesLike.Win32.FileTour.tc
EmsisoftTrojan.Delf.FareIt.Gen.rIW@nWgVxwT (B)
MAXmalware (ai score=83)
GDataTrojan.Delf.FareIt.Gen.rIW@nWgVxwT
GoogleDetected
ALYacTrojan.Delf.FareIt.Gen.rIW@nWgVxwT
VBA32Trojan.Wacatac
Cylanceunsafe
IkarusTrojan.Delf.FareIt
MaxSecureTrojan.Malware.205899335.susgen
FortinetW32/PossibleThreat
DeepInstinctMALICIOUS

How to remove Malware.AI.3762653944?

Malware.AI.3762653944 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment